首页> 外文期刊>Future generation computer systems >Evaluation of transaction authentication methods for online banking
【24h】

Evaluation of transaction authentication methods for online banking

机译:网上银行交易认证方法评估

获取原文
获取原文并翻译 | 示例

摘要

AbstractAuthentication is a major research topic in the information security field. Much has been written about assessing entity (user) authentication methods, but there is a lack of literature concerning the evaluation of financial transaction authentication in online banking. Entity authentication methods have been systematized by quantifying their qualitative aspects, but there is no evaluation mechanism which also places the additional characteristics of transaction authentication in a user-centric context. Based on an existing mechanism which quantifies accessibility, memorability, security and vulnerability characteristics in entity authentication methods, we propose feasibility as an additional dimension which quantifies aspects related to the secure usability of transaction authentication methods. We also propose the use of this evaluation mechanism by multiple raters to reduce personal bias. Four implemented and eight proposed authentication methods for online banking were evaluated by seven experts. The results indicate that the mechanism can be applied on a wide range of authentication methods, since it is able to evaluate methods based on different information schemes. However, care must be taken that evaluations are performed by multiple experts, due to the amount of subjectivity inherent in the mechanism and in the different opinions of the raters.HighlightsWe introduced a qualitative evaluation mechanism for online banking authentication.Seven raters examine 12 online banking authentication methods with our mechanism.Bank-issued authentication devices overall have a qualitative very good fit.Most user-owned devices fit poorly compared to bank-issued devices.
机译: 摘要 身份验证是信息安全领域的主要研究主题。关于评估实体(用户)身份验证方法的文章很多,但是缺乏有关在线银行中金融交易身份验证的评估的文献。实体认证方法已经通过量化其质量方面进行了系统化,但是没有评估机制也将事务认证的其他特征置于以用户为中心的上下文中。基于在实体认证方法中量化可访问性,存储性,安全性和漏洞特征的现有机制,我们提出了可行性,作为对与事务认证方法的安全可用性有关的方面进行量化的附加维度。我们还建议多个评估者使用此评估机制来减少个人偏见。七位专家评估了四种实施的在线银行认证方法和八种提议的认证方法。结果表明,该机制可以应用于多种身份验证方法,因为它能够基于不同的信息方案评估方法。但是,由于该机制内在的主观性和评估者的不同意见,因此必须小心由多位专家进行评估。 < / ce:abstract> 突出显示 我们引入了在线银行身份验证的定性评估机制。 七个评估者检查了12种在线银行认证方法 < ce:para id =“ p000015” view =“ all”>银行发行的身份验证设备总体上非常适合定性。 与银行发行的设备相比,大多数用户拥有的设备安装得不好。

著录项

  • 来源
    《Future generation computer systems》 |2018年第3期|430-447|共18页
  • 作者单位

    Faculty of Management, Science & Technology, Open University of the Netherlands,Economy & Management, NHL University of Applied Sciences,Faculty of Science, Radboud University;

    Faculty of Management, Science & Technology, Open University of the Netherlands,Faculty of Science, Radboud University;

    Faculty of Management, Science & Technology, Open University of the Netherlands,Faculty of Science, Radboud University;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Online banking; Authentication; Evaluation;

    机译:网上银行;认证;评估;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号